US government is pushing to gain unprecedented access to your medical records – as data protections are weakening
You might assume that what you tell a doctor stays between you, your physician and perhaps your insurer. But the reality is more complicated.
The Health Insurance Portability and Accountability Act, the federal privacy law that governs health information and is commonly known as HIPAA, is narrower than its reputation suggests. It regulates hospitals, physicians, insurers and their business associates, but not the health data you generate everywhere else: not the period-tracking application on your phone, the internet search you ran about a diagnosis, the DNA you mailed to a genealogy company or the wearable that counts your heartbeats.
Even the records HIPAA does cover can be shared, sold or handed to the government in ways that might surprise you.
This gap in protection matters more than ever because the
As a professor of law at
Limits of medical privacy
HIPAA gives you several rights: You can see your health records, demand corrections and expect that a covered provider will not casually disclose your information.
But the law also permits release of some information without your consent. A hospital fully bound by HIPAA may release certain types of records without your authorization and without telling you. There are roughly a dozen such categories. Information about treatment, payment and routine healthcare logistics require no sign-off. Neither does information released for public health reporting, law enforcement, judicial and administrative proceedings, health plan oversight, research or the broad catchall of essential government functions.
The statute is also thick with additional exceptions. In practice, much of your health information can be shared through these many open doors. And once data is sent outside the system covered by HIPAA, the HIPAA limits fall away.
For instance, prescription drug monitoring programs, which every state now operates, assemble detailed logs of who filled which controlled substance prescription and when. Federal law enforcement can often access these logs with a self-issued administrative subpoena – an order that doesn't require a judge's approval or oversight.
These programs have expanded beyond opioids into a dragnet that shares health data across state lines, exposing patients who seek reproductive or gender-affirming healthcare to surveillance far from home.
Health records can flow to many destinations under different rules. A given disclosure might feel more like a violation depending on who decides where it can go and who can then see it.
RFK Jr.'s push to access Americans' health records
Since the spring of 2025, Health and Human Services Secretary
According to
Large health datasets can be useful. Pooled records can expose drug side effects, track outbreaks and reveal disparities in care that smaller studies miss. Public health has always depended on some surrender of individual privacy for collective benefit.
The concern is not that the government should never collect health data. It is that meaningful safeguards have not kept pace with the scale of collection and capabilities of modern data analytics.
In seeking access to Americans' medical records for a vaccine and autism study, HHS has declined to say how many states are involved, what data it collects, who can see it or how it will be protected.
Building a comprehensive repository to chase a question that science has already answered inverts the logic of research. Usually a hypothesis justifies the data collected, rather than the reverse.
Collecting identifiable records for tens of millions of people in a single database also creates a target for breaches, secondary uses that no one consented to and abuses by current or future administrations with different priorities.
'Anonymized' doesn't protect your health privacy
Officials have offered reassurances that data will be aggregated and stripped of identifiers so no individual can be singled out.
Decades of computer science research undercuts that promise. A study published in Nature in
The researchers audited AI diagnostic models trained on clinical data, including chest X-rays, electrocardiograms and electronic health records. They asked whether an outsider could tell if a particular person's data had been used to build the model. For instance, confirming that someone's record helped train a cancer-prediction tool can reveal that that person has cancer. This exploit is known as a membership inference attack.
The research team found that while the average risk of being identified from data stripped of identifying information often looked reassuringly low, some patients faced near-certain reidentification The burden fell unevenly: Underrepresented groups, sorted by race, insurance status or diagnosis, were most at risk. Those most exposed were frequently already most vulnerable to discrimination.
Researchers have long established that removing identifiers from rich datasets does not reliably protect the people in them, and that identification gets easier the more information you have. Today's AI technology makes it possible to carry out these attacks remotely and quickly.
The same privacy problems, exported
The
Under the Trump administration's global health plan,
The
Medical records no longer live on shelves that can only be easily accessed at your doctor's office.
The common thread
Domestic records collection and foreign data-for-aid deals rest on the same faith that anonymization neutralizes the risk of pooling sensitive health data.
The evidence says otherwise. This does not mean health data should never be gathered or studied, but I believe that the reassurances deserve skepticism, the safeguards deserve scrutiny, and the people whose bodies generated the data deserve a say. To safeguard privacy, a government seeking sensitive medical records should have to show why it needs them and how the safeguards it relies on hold up.
Privacy law was built for a world where data resided in filing cabinets. Governments from Kalamazoo to
This article is part of a series on data privacy that explores who collects your data, what and how they collect, who sells and buys your data, what they all do with it and what you can do about it.
This article is republished from The Conversation, a nonprofit, independent news organization bringing you facts and trustworthy analysis to help you make sense of our complex world. It was written by:
Read more:
'Are you married?' Why doctors ask invasive questions during treatmentHealth and Human Services secretary influences every aspect of America's healthFederal subpoenas for transgender care records raise medical privacy concerns and put providers in a legal bind – a health law expert explains what's at stake


Calif. attorney tossed from Texas insurance fraud lawsuit
Ohio man pleads guilty to ‘largest healthcare fraud case’
Advisor News
- Gen X faces ‘pension envy’ as they head into retirement
- Your client wants to cash out an annuity. Here’s what to consider
- How student loan debt impacts 401(k) balances
- The ‘sandwich generation’ faces compounded barriers to retirement savings
- Benefit Costs Squeeze Schools, Driving Cuts, Tax Hikes And Difficult Tradeoffs
More Advisor NewsAnnuity News
- A-Cap strikes back with lawsuit accusing SC regulators sloppy process, leaking secrets
- AM Best to Discuss Its Views on Private Credit Surge and Risks at 2026 NAIC/NIPR Insurance Summit
- OID recovers $260M in life insurance benefits
- NUNN BILLS TO COMBAT PAYMENT SCAMS, CUT FINANCIAL RED TAPE PASS FINANCIAL SERVICES COMMITTEE
- SS&C Black Diamond Expands Annuities & Insurance Marketplace with New Insurance Capabilities and Carriers
More Annuity NewsHealth/Employee Benefits News
Life Insurance News